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(54) Availability and recovery of files using copy storage pools 



(57) A data processing system using a client-server 
configuration provides a method and apparatus for gen- 
erating and managing multiple copies of client data files. 
A sen/er coupled to a plurality of client systems organ- 
izes sets of storage volumes into storage pools. Primary 
copies of the client data files are stored in primary stor- 
age pools while additional back-up copies of the client 
data files are copied to secondary storage pools, called 



copy storage pools. A server database maintains direc- 
tory information about the original client data file and ref- 
erence information about the location of the multiple file 
copies within the server A storage manager provides a 
control centre within the server, directing and coordinat- 
ing the transfer of files between the various storage 
pools, and updating the server database with directory 
and reference location information. 
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Description 

FIELD OF THE INVENTION 

The present invention relates generally to storage 
management within data processing systems, and more 
particularly, to a method and apparatus for generating 
and managing multiple copies of client data files within 
a storage management server system. The storage 
management server stores primary copies and addition- 
al back-up copies of client data files on sets of storage 
volumes organized into storage pools. Multiple copies 
of client data files improves the availability and recovery 
of client data files in the event one of several types of 
failures occur within the data processing system. 

BACKGROUND OF THE INVENTION 

Data processing systems typically require a large 
amount of data storage. Customer data, or data gener- 
ated by users within the data processing system, occu- 
pies a great portion of this data storage. Effective data 
processing systems also provide back-up copies of this 
user data to prevent a bss of such data. Many business- 
es view any loss of data in their data processing systems 
as catastrophic, severely impacting the success of the 
business. 

Initially, back-up systems simply copied data from 
DASD to magnetic tape at periodic time intervals, such 
as a daily or weekly basis. The magnetic tape was then 
manually moved to a secure storage area, usually locat- 
ed kilometres from the location of the data processing 
system. This Initial back-up method had several short- 
comings: retrieval of the back-up copy was time con- 
suming, on the order of hours or even days; all primary 
files in the data processing system were copied to the 
back-up media regardless of whether they were updat- 
ed since the last back-up; and, system performance suf- 
fered since files could not be updated during the back- 
up process. A slight improvement to this initial back-up 
method periodically transmitted the primary data files to 
a back-up location. Although this method improved the 
time to retrieve the back-up data, it still required the pri- 
mary files to be rewritten each time a back-up occurred 
and it still prevented further updates to be made to the 
primary files during the back-up process. 

An alternative to these initial back-up methods in- 
volves data shadowing, or data mirroring. Dual copy and 
remote dual copy typically provide this back-up tech- 
nique. In dual copy, additional storage devices are pro- 
vided in the data processing system such that an addi- 
tional copy of the primary data file is written to an addi- 
tional storage device. Storage devices are coupled to- 
gether to form duplex pairs, each duplex pair consisting 
of a primary and secondary storage device. When data 
is written to the primary storage device, the data 
processing system automatically copies the data to the 
secondary storage device. Thus, the secondary storage 



device is an exact physical image, or mirror, of the pri- 
mary storage device. With dual copy, a movement of a 
data file from a first primary storage device to a second 
primary storage device requires that the back-up copy 

5 of the data file also be moved from a first to a second 
secondary storage device. Because dual copy relies on 
physical data mirroring, the secondary storage device 
must be the same physical geometry as the primary 
storage device, configured and formatted to be an exact 

10 replica. 

Remote dual copy extends the dual copy method- 
ology to disaster recovery systems. In this configuration, 
the primary and secondary storage devices are located 
at different storage subsystem sites remote from each 

15 other The primary and secondary storage devices 
again form duplex pairs with the secondary storage de- 
vice mirroring the primary storage device. Again, the pri- 
mary and secondary storage devices must be the same 
physical geometry with the secondary storage device 

20 configured and formatted to be an exact replica of the 
primary storage device. Remote dual copy falls into two 
general categories, synchronous and asynchronous. 
Synchronous remote dual copy Involves sending prima- 
ry data to the secondary location and confirming the re- 

25 ception of such data before completing the current input/ 
output (I/O) operation. That is, a subsequent I/O oper- 
ation at the primary site cannot start until the primary 
data has been successfully copied to the secondary 
storage device. On the other hand, asynchronous re- 

30 mote dual copy completes the I/O operation to the pri- 
mary storage device before the data Is copied to the sec- 
ondary storage device. That Is, a subsequent I/O oper- 
ation at the primary site can begin before the primary 
data from the previous I/O operation has been copied 

35 to the secondary site. 

Client-server environments have also been devel- 
oped within data processing systems to serve many pur- 
poses. Generally, a client-sen/er configuration Includes 
several clients connected to a single server The clients 

40 create client files and transfer these files to the server 
The server receives the client files and stores them on 
several attached storage devices. When used as a stor- 
age management system, the server manages the 
back-up, archival, and migration of these client files. By 

45 storing the client file on an attached storage device, the 
server creates a back-up copy of the client file. Clients 
may vary from small personal computer systems to 
large data processing systems having a host processor 
connected to several data storage devices. The server 

50 can also range from a small personal computer to a 
large host processor 

Data availability, however, has become such a crit- 
ical measure of data processing systems that providing 
only a single copy of the client file within the server sys- 

55 tern may no longer be sufficient. Several types of errors 
can occur within the server system to prevent access to 
the client files. Media failures can damage the client file 
making it unavailable to the client system. In addition, 
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an entire volume containing several client files may be 
destroyed within the server system. Finally, a disaster 
may wipe out the entire server system. All of these fail- 
ures prevent the client system from accessing the back- 
up copy provided by the server system. Without an ad- 
ditional back-up copy, the integrity of the server system 
as protection against the loss of client files becomes in- 
adequate should the server system suffer a catastrophic 
failure. 

To substantially reduce the risk of data loss, server 
systems typically create a second back-up copy within 
the server storage subsystem. Some current server sys- 
tems create an additional back-up by requesting the cli- 
ent system to resend a set of client files. The server then 
catalogues the second set of client files. While It simpli- 
fies the server's duties in maintaining the additional 
back-up copies, this method poses some disadvantag- 
es. The server uses a greater amount of the network 
resources between the client systems and the server. 
The clienl system transfers twice as much data to the 
server to maintain back-up protection for a single file. In 
addition, the client system cannot access the original cli- 
ent file while it transfers the file to the server. Thus, re- 
quiring the client system to resend the client file to the 
server doubles the amount of time the file is unavailable 
to the user in the client system. 

Altematively, some current server systems create 
an additional back-up by copying the contents of a first 
storage volume to a second storage volume. The first 
storage volume contains the initial back-up copies of the 
client file provided to the server system from the client 
system. By copying the entire first volume to a second 
volume, the second volume becomes a duplicate of the 
first volume and the server system now contains a sec- 
ond back-up copy ot the client files. Essentially, the serv- 
er system is making back-up copies of its primary data 
files, wherein these primary data files are the primary 
copies of the client files sent to the server from the clienl 
systems. 

Making back-up copies on a storage volume bound- 
ary creates disadvantages in these current server sys- 
tems. Device geometries become important when the 
server system makes its subsequent back-up copies by 
replicating storage volumes. Creating back-up copies in 
this manner typically requires identical storage devices 
for storing the back-up volume. That is, the storage de- 
vice used for storing the subsequent back-up copies in 
the server system must be the same type and formatted 
in the same manner as the storage device which stores 
the primary copies of the client files. Furthermore, cre- 
ating subsequent back-up copies in the sen/er system 
by replicating storage volumes can propagate inefficient 
use of storage volumes. That is, a first storage volume 
containing initial client files that is only partially full will 
he duplicated in a second storage volume. This doubleis 
the amount of unused, and unavailable, space within the 
server system. 

Full volume copying as a means for back-up also 



creates additional performance inefficiencies in the 
server. This method often requires the server to dupli- 
cate unmodified files from one storage volume to anoth- 
er. For example, a first storage volume containing X files 

5 receives an additional file. Full volume copying now re- 
quires that all files residing on the first volume, X+1 files, 
be copied to a second storage volume. Thus, the un- 
changed files, X files, must be duplicated to make the 
second storage volume an exact replica of the first stor- 

10 age volume. In addition, files are sometimes moved 
from one storage volume. to another to compress data 
within the second volume. Full volume copying as a 
back-up means requires that the second volume must 
be duplicated once the data compression is complete. 

15 As stated previously, the server system contains a 
storage subsystem for storing one or more back-up cop- 
ies of client files. The storage subsystem within the serv- 
er system need not be limited to a single type of storage 
device. In fact, server storage subsystems often com- 

20 prise several different types of storage devices: DASD, 
optical disk, or magnetic tape. When a server is coupled 
to different types of storage devices, the storage sub- 
system is often categorized according to a storage hier- 
archy. The hierarchy may be based on several factors 

25 including: the access speed of the storage device, the 
density of storage on the device, and the cost of the de- 
vice per storage unit (I.e. cost per megabyte). A server 
system containing different storage devices grouped in 
a storage hierarchy uses a computer application pro- 

30 gram called a hierarchical storage manager to maintain 
data files within the storage hierarchy The storage man- 
ager migrates data files between the various levels of 
the data storage hierarchy using storage management 
techniques. The storage manager also maintains a ref- 

35 erence list, or index, of the data files stored within the 
server system to assist It in managing the repository of 
client files within the storage hierarchy. 

This storage hierarchy within the sen/er system 
poses additbnal problems for servers that generate ad- 

40 ditional back-up copies by replicating storage volumes. 
As stated previously, this back-up technique depends 
on device geometries. Since the additional back-up stor- 
age volume is a mirror image of the first storage volume 
in the server, migrating the primary copy of the client file 

45 from one storage device type to a different storage de- 
vice type within the storage hierarchy necessitates that 
the back-up copy must also be recopied. That is, full vol- 
ume copying requires that two storage volumes be rep- 
licated for every one file that Is migrated within the stor- 

50 age hierarchy. The first storage volume must be dupli- 
cates since It now contains one less file. Additionally, 
the second storage volume must also be duplicated 
since It contains an additional file. This scenario makes 
for an Inefficient back-up storage management scheme 

55 within the storage hierarchy of the server system. 

Accordingly, an improved method and apparatus is 
needed within a data processing system using a client- 
server configuration for generating and managing addi- 
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tional back-up copies of client files sent from the client 
systems, to the sen/er Such method and apparatus 
should incrementally back-up storage volumes within 
the server storage subsystem instead of replicating the 
entire storage volume. In an incremental back-up 
scheme, only the client files from the first storage vol- 
ume that are new or updated since the previous addi- 
tional back-up was completed should be copied to the 
second storage volume. In addition, such method and 
apparatus should provide direct access to the client sys- 
tem of the additional back-up copy of a requested client 
file when the primary copy of the file is unavailable within 
the sen/er storage subsystem. In turn, such method and 
apparatus should also recover the primary copies of the 
client files from the additional copies of the files when 
the sen/er system determines that the storage volume 
containing the primary copies has been destroyed. 

SUMMARY OF THE INVENTION 

It is an object of the present invention to provide a 
technique which alleviates the above drawbacks- 
According to the present invention we provide a da- 
ta processing system having a plurality of client systems 
generating client data files, a server coupled to said plu- 
rality of client systems for generating and managing 
multiple copies of said client data files, said server com- 
prising: a first storage pool having a plurality of primary 
storage volumes for storing a primary copy of said client 
data files; a second storage pool having a plurality of 
copy storage volumes for storing a back-up copy of said 
client data files; a sen/er database for maintaining direc- 
tory information and reference location information for 
said primary copy and said back-up copy of said client 
data files; and a storage manager coupled to said first 
storage pool, said second storage pool, and said server 
database, said storage manager storing said primary 
copy of said client data file received from said client sys- 
tem in said primary storage volume, said storage man- 
ager further generating a back-up copy of said client da- 
ta file by copying said primary copy of said client data 
file from said primary storage volume to said copy stor- 
age volume, said storage manager also recovering a 
damaged primary copy of said client data file from said 
back-up copy of said client data file in said copy storage 
volume, said storage manager also periodically per- 
forming an incremental back-up operation from said first 
storage pool to said second storage pool such that a set 
of selected primary copies of client data files is copied 
to said copy storage volumes. 

Further according to the present invention we pro- 
vide a data processing system having a plurality of client 
systems generating client data files, and a sen/er cou- 
pled to said plurality of client systems, a method in sard 
server for generating and managing multiple copies of 
said client data files comprising steps of: storing a pri- 
mary copy of said client data files received from said 
plurality of client systems in a first storage pool, said 



storage pool having a plurality of primary storage vol- 
umes; generating a back-up copy of said client data files 
by copying said primary copy to a second storage pool, 
said second storage pool having a plurality of copy stor- 

5 age volumes; maintaining directory information and ref- 
erence location information to link said primary copy and 
said back-up copy ol said client data files in a sen/er 
database; recovering an unavailable primary copy of 
said client data file from said back-up copy stored in said 

10 copy storage volume to said primary storage volume; 
and periodically performing an incremental back-up op- 
eration from said first storage pool to said second stor- 
age pool- 

A first embodiment of the present invention includes 
a data processing system having a plurality of client sys- 
tems coupled to a server system. The server system 
contains a storage manager, a database, and a storage 
subsystem. The storage manager is coupled to both the 
database and the storage subsystem. The storage sub- 

20 system further contains a plurality of storage pools. 
Each storage pool consists of a set of storage devices 
of the same type, either DASD, optical disk, or magnetk: 
tape. A first storage pool, a primary storage pool, stores 
a primary copy of client files. A second storage pool, a 

25 copy storage pool, stores an additional back-up copy of 
client files- 

The storage manager controls the transfer of a pri- 
mary copy of client files from the client system to the 
primary storage pool within the sen/er. The storage 

30 manager also controls the incremental back-up process 
of copying the newly created, or newly updated, client 
files in the primary storage pool to the copy storage pool. 
The storage manager ensures that client files which 
were unchanged since the previously completed incre- 

35 mental back-up operation are not copied to the copy 
storage pool in the current incremental back-up opera- 
tion. The storage manager also maintains a reference 
list, or index, within the database linking the primary 
copy of a client file within the primary storage pool to the 

40 additional back-up copy of the file within the copy stor- 
age pool- Finally, the storage manager automatically 
generates a back-up copy in the copy storage pool of 
primary user data files when these files are written or 
updated in the primary or secondary storage pool. 

45 Another embodiment of the present invention pro- 
vides a method within a server system for generating 
and managing multiple copies of user data files within 
storage pools of the server For a user data file written 
from a client system, the method stores a primary copy 

50 of the file on a storage volume within a primary storage 
pool. The method further generates a back-up copy of 
the user file on a storage volume within a copy storage 
pool. The method also recovers damaged primary cop- 
ies of user data files from the back-up copies stored 

55 within the copy storage pools. The method also main- 
tains a reference list within a server database whk;h 
pairs the back-up copies on the copy storage volumes 
to the primary copy of the user data files on the primary 
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storage volumes. 

The foregoing and other objects, features, and ad- 
vantages of the invention will be apparent frona the fol- 
lowing more particular description of a preferred embod- 
iment of the invention, as illustrated In the accompany- 
ing drawings. 

DESCRIPTION OF THE FIGURES 

FIG. 1 is a block diagram of a data processing sys- 
tem showing a plurality of client systems coupled to a 
server system. 

FIG. 2 is a block diagram of the database included 
in FIG. 1 showing the reference list, or index, which links 
the primary copy of the client files with their back-up cop- 
ies. 

FIG. 3 is a block diagram showing the server system 
in FIG. 1 generating a back-up copy of a user data file. 

FIG. 4 is a block diagram showing the server system 
in FIG. 1 providing direct access to an additional back- 
up copy of a client file when the primary copy of the file 
is unavailable. 

Fl Gs. 5 A and 5B contain a flow diagram of a method 
for the server system in FIG. 1 providing incremental 
backrup of a first storage volume within a primary stor- 
age pool to a second storage volume within the copy 
storage pool. 

FIGs. 6A and 6B show a flow diagram of a method 
for the server system in FIG. 1 recovering a primary copy 
of a client file from the additional back-up copy of the file. 

FIG. 7 is a block diagram representing a storage 
medium or memory for storing computer executable in- 
structions. * 

DETAILED DESCRIPTION OF THE INVENTION 

Referring more particularly to the drawing, like nu- 
merals denote like features and structural elements in 
the various figures. The invention will be described as 
embodied in a data processing system using a client- 
server configuration and providing storage back-up for 
data recovery and availability. Turning now to FIG. 1 a 
data processing system 1 0 is shown having multiple cli- 
ent systems 1 5 coupled to a server system 20. The serv- 
er system 20 includes a storage manager 30 coupled to 
a server database 60. The storage manager 30 is further 
coupled to a plurality ot primary storage pools 40 and a 
plurality of copy storage pools 50. A storage pool 40, 50 
consists of a plurality of storage devices, either DASD, 
optical disk, or magnetic tape devices. However, all stor- 
age devices within a single storage pool 40, 50 are iden- 
tical in type and format. The server database is further 
coupled to a set of storage volumes 70 providing a back- 
up for the server database 60. 

Each client system 15 creates original user data 
files, or client files, which are stored within the corre- 
sponding client system 15. The client systems 15 trans- 
fer client files to the sen/er system 20. Transferring client 



files to the server 20 inherently provides a back-up 
mechanism within the server 20 for these original client 
files. The storage manager 30 directs the client file to a 
storage device, or storage volume, within a primary stor- 
5 age pool 40. The primary storage pool 40 stores a pri- 
mary copy of the client files. The storage manager 30 
maintains a catalog within the server database 60 listing 
the files stored within the storage pools 40, 50 of the 
server system 20. Once the client file is stored within a 
10 primary storage pool 40, the storage manager 30 up- 
dates the server database 60 to catalog this file within 
the server system 20. 

The server system 20 also generates an additional 
back-up copy of the client file and stores this back-up 
15 copy on a storage device, or storage volume, within a 
copy storage pool 50. The storage manager 30 coordi- 
nates this operation. Once the additional back-up copy 
is created within the copy storage pool 50, the storage 
manager 30 updates the server database 60 to catalog 
20 the additbnal back-up copy of the client file. In addition, 
the catalog entry within the server database corre- 
sponding to the additional back-up copy includes a 
cross-reference to the primary copy of the client file. 
Thus, the primary copy in the phmary storage pool 40 
25 is linked to the additional back-up copy within the copy 
storage pool 50. Finally, the server database 60 is 
backed-up to a set of storage volumes 70. 

Referring to FIG. 2, this block diagram shows two 
portions of the server database 60, a server storage in- 
30 ventory 80 and a server storage reference list 90. The 
inventory 80 and reference list 90 are used to catalog 
files stored within the storage pools 40, 50 of the server 
20. An entry 100 is expanded to show some of the in- 
formation contained within the sen/er inventory 80. Like- 
ns wise, one entry 120 within the reference list 90 is ex- 
panded to show some of the information kept within this 
portion of the server database 60. Each entry 100 within 
the inventory 80 corresponds to a primary copy of a cli- 
ent file stored within the server 20. Whereas, each entry 
40 1 20 within the reference list 90 corresponds to any copy 
of a client file contained within the server 20, either a 
primary copy in the primary storage pool 40 or an addi- 
tional back-up copy within the copy storage pool 50. 
That is. a client file copied multiple times within the serv- 
es er 20 will have a single entry 1 00 in the server inventory 
80, but multiple entries 120 within the reference list 90. 

The sen/er inventory entry 100 provides a first field 
1 02 for storing the file name 1 02 of the client file. A sec- 
ond field 104 is provided to maintain a status indicator 
50 104 for the client file. This status flag 104 indicates 
whether the file is active or inactive. The storage man- 
ager 30 within the server 20 periodically determines, 
and adjusts, the status 104 of each client file within the 
server inventory 80. A third field 106 within each sen/er 
55 inventory entry 80 lists the user name 106. The user 
name 106 identifies which client system 15 owns the 
specified client file. A fourth field 1 08 provides the direc- 
tory name 1 08 within the client system 1 5 where the cor- 
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responding client file originated. A fifth field 110 records 
the date and time 110 when the primary copy of client 
file was stored within the server 20. 

Finally, a sixth field 1 1 2 contains an unique identifier 
for the primary copy of the client file, denoted the bit-file 
Identifier (bfid) 112. As stated previously, each primary 
copy of a client file stored within the server system 20 
is logged as a separate entry 100 into the server inven- 
tory 80. Each entry 100 within the inventory 80 receives 
a separate, unique bfid 112. Thus, a client system may 
transfer to the server 20 multiple versions of the same 
client file at different times. Multiple entries 100 would 
be kept within the server inventory 80 and each entry 
would receive a unique bfid 112 corresponding to the 
distinct time in which the client system 15 transferred 
the file to the server 20. In addition, an additional back- 
up copy of the client file may be created and stored In a 
storage volume within a copy storage pool 50. This 
back-up copy receives the same bfid 112 as the corre- 
sponding primary copy of the client file and is not sepa- 
rately logged into the server inventory 80. 

The reference list 90 contains an array of entries 
120, one entry 120 for either an initial or additional back- 
up copy of a client file. Each entry 120 within the refer- 
ence list 90 specifies where the associated copy of the 
client file, either a primary copy or an additional back- 
up copy, is located within the server 20. Each client file 
copied and stored within the server 20 Is Identified by a 
unique bfid 112. The bfid 112 Is recorded in a second 
field 124 within the reference list entry 120. The server 
20 storage is organized Into storage pools 40, 50, which 
are simply sets of storage volumes. A file may be located 
within the server 20 storage by specifying the storage 
pool, the storage volume within the storage pool, and 
the offset within the storage volume. Accordingly, field 
Is provided within the reference list entry for each of 
these parameters: a storage pool identifier 122, a stor- 
age volume identifier 126, and an offset 128 within the 
storage volume. In addition, a fifth field 130 is provided 
within the reference list entry 120 to store the size 130 
of the file. 

The bfid 112 links the reference list 90 with the in- 
ventory 80. The Inventory 80 contains information about 
the original client file; the filename 1 02, the client system 
name 106, and the directory name 108 within the client 
system 1 5 where the original file resides. The reference 
list 90 contains the location of copies of the client file, 
initial and back-up, within the server 20 storage: the stor- 
age pool 1 22, the storage volume 1 26 within the storage 
pool, and the offset 128 on the storage volume. Each 
inventory entry 100 and reference list entry 1 20 contains 
the bfid 112, 124 for the file copy. Besides providing 
each copy of a client file with a unique identifier, the bfid 
1 1 2 also maps the information within the inventory 80 to 
the reference list 90. 

Referring to FIG; 3, this figure shows an example 
of an autonr^atic generation of an additional back-up 
copy of client files within the server 20. Multiple client 
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systems 1 5 are coupled to a server 20 having a storage 
manager 30, a primary storage pool 40, a copy storage 
pool 50. a server database 60, and a database back-up 
storage 70. Four data transfers A, B. A1 , B1 are shown 

5 with dashed lines In the figure. In data transfer A, one 
client system 15 sends two client files a, b to the server 
20. The storage manager 30 directs these files a, b to a 
storage device within the primary storage pool 40. The 
server database 60 is also updated to add the primary 

10 copies of files a, b to the Inventory 80 and the reference 
list 90. A unique bfid 11 2 is assigned to the primary cop- 
ies of the client files a, b stored within the primary stor- 
age pool 40. In data transfer Al, the server 20 generates 
an additional back-up copy of each client file a, b in a 

15 storage volume within a copy storage pool 50. The stor- 
age manager 30 coordinates the transfer between the 
primary 40 and copy 50 storage pools. The database 60 
is again updated to add the back-up copies of the client 
files a, b stored within the copy storage pool 50. A bfid 

20 11 2 Is assigned to these back-up copies, the same bfid 
112 as was given to the primary copies of the client files 
. a. b. 

Likewise, initial and back-up copies of client files c, 
d are stored within the server in data transfers B, 31. 

25 The storage manager 30 controls the data transfer to 
the primary 40 and copy 50 storage pools. The database 
60 is again updated to add the primary copies and back- 
up copies of client files c, d. Also, each primary copy 
receives a separate bfid 1 1 2 linking the inventory 80 In- 

30 formation to the reference list 90. In sum, the sen/er in- 
ventory 80 has added four entries 1 00, one for each pri- 
mary copy of client files a. b, c, d, and the reference list 
90 has increased by eight entries 1 20, one for each pri- 
mary and back-up copy of the client files a, b, c, d. In 

35 addition, four new bfids 112 have been created from 
these four data transfers A. B, Al , B1 . These examples 
point out the device geometry Independence of the cur- 
rent invention. The additional back-up copies need not 
be stored on the same storage device type on which the 

40 primary copies reside. Also, if the primary copies should 
be migrated within a storage hierarchy in the server 20, 
the back-up copies can remain in their current location. 
Furthermore, the Inventory 80 and reference list 90 en- 
tries within the server database 60 for the back-up cop- 

45 ies need not be updated. 

The server 20 can generate additional back-up cop- 
ies of client files either synchronously or asynchronous- 
ly. For synchronous back-up generation, the additional 
back-up copies must be copied to a copy storage pool 

50 50 before the server 20 signals to the client system 1 5 
that the primary copy operation is complete. That is, the 
primary copy of the client file must be stored in the pri- 
mary storage pool 40 and the back-up copy must be 
stored In the copy storage pool 50 before the sender 20 

55 signals transfer complete to the requesting client system 
15. For asynchronous back-up copying, the sen/er 20 
signals transfer complete to the requesting client system 
15 once the primary copy of the client file is stored in a 
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primary storage pool 40. The server 20 then subse- 
quently generates an additional back-up copy in a copy 
storage pool 50 from the primary copy in a primary stor- 
age pool 40. 

FIG. 4 shows an example of the server 20 recover- s 
Ing unavailable primary copies of client files from back- 
up copies of the files stored within a copy storage pool 
50. As depicted in FIG. 1 , multiple client systems 15 are 
coupled to a server system 20 having a storage manag- 
er 30, a primary storage pool 40, a copy storage pool io 
50, a server database 60, and a database back-up stor- 
age 70. A first primary storage pool 40 contains DASD 
storage volumes 41 , 42 while a second primary storage 
pool 40 contains magnetic tape storage volumes 43, 44, 
45. Three data transfers A, B, C are shown with dashed is 
lines in the figure, each depicting the server 20 sending 
the back-up copy of a requested client file b, d, f, g when 
the primary copy is unavailable. In scenarios A and B, 
the storage manager 30 uses the server database 60 to 
determine that the primary copies of the requested client 20 
files b, d are damaged on storage volumes 41 , 42. The 
storage manager 30 then queries the database 60 to 
locate the back-up copies of the client files b, d within 
the copy storage pool 50. The storage manager 30 fi- 
nally coordinates the data transfer of the client files b. d 25 
to the respective client systems 1 5 directly from the stor- 
age volumes 51, 52 within the copy storage pool 50. 

In scenario C, a destroyed storage volume 43 holds 
the primary copies of the requested client files f, g. The 
storage manager 30 again uses the database 60 to de- 30 
termine that the primary copies are unavailable and to 
locate the back-up copies of the files f , g on the storage 
volume 53 within the copy storage pool 50. The storage 
manager 50 coordinates the transfer of files f, g to the 
client system 15 directly from the storage volume 53 35 
within the copy storage pool 50. 

FIGs. 5A and 5B show a flow diagram describing a 
method 500 within the server 20 for providing an incre- 
mental back-up operation from a primary storage pool 
40 to a copy storage pool 50. Incremental back-up oc- 40 
curs when the server 20 generates an additional back- 
up copy of only those files within a storage volume 41 
of a primary storage pool 40 that have changed or been 
added since the most recent periodic back-up of the 
storage volume 41 . The sender 20 performs this opera- 45 
tion in response to either a direct command from a client 
system 15 or a determination made by the storage man- 
ager 30. FIG. 5A describes a back-up procedure for an 
optimized, sequential storage volume 43 within a prima- 
ry storage pool 40. An optimized storage volume is de- so 
fined as a primary storage volume 41-45 in which the 
database 60 has maintained a pointer to the file on the 
storage volume that has been previously backed-up to 
a copy storage volume 51 -54. Conversely, FIG. 58 out- 
lines a back-up operation taken for non-sequential 41 ss 
or unoptimized sequential 44 storage volumes within a 
primary storage pool 40. 

Referring particularly to FIG. 5A, the server data- 



base 60 is searched to build a list of storage volumes 
41 -45 from the primary storage pools 40 which contain 
files to be copied to storage volumes 51-54 within the 
copy storage pools 50. A step 505 is provided to build 
such a volume list. At step 510, the method 500 points 
to the first entry within the volume list. This entry con- 
tains a subset of the information maintained within the 
server database 60 pertaining to a particular storage 
volume 41 within a primary storage pool 40. At step 51 5, 
the volume list is checked to determine if all entries with- 
in it have been processed. If the end of the volume list 
has been reached, the method ends at step 599. Oth- 
erwise, the current volume list entry is checked to de- 
termine if the corresponding primary storage volume 
41 -45 is a sequential volume. If it is a sequential volume, 
step 525 further checks to determine if the correspond- 
ing volume has also been optimized. If either inquiry in 
steps 520 and 525 return a negative response, the 
method continues at step 560 in FIG. 58. 

Referring now to FIG. 58. a step 560 is provided to 
query the server database 60 to build a list of files to be 
copied from a storage volume 41 within a primary stor- 
age pool 40 to a copy storage pool 50. As stated previ- 
ously, the server database 60 maintains a bfid 112 for 
each client file, a storage volume identifier for each stor- 
age volume: and a storage pool identifier 122 for each 
primary 40 or copy 50 storage pool. Step 560 first 
searches the database 60 for ait client files residing on 
the specified primary storage volume 41. The bfids 112 
of these client files are then combined with the storage 
pool identifier 1 22 of the copy storage pool 50 to find 
matched entries within the database 60. The client files 
that are not located within the copy storage pool 50, 
where no matched entry is found in the database 60, 
are added to the list. At step 565, the method 500 points 
to the first entry within the newly built file list. At step 
570, the file list is checked to determine if the current 
entry indicates that the end of the list has been reached. 
If the end of the list has been reached, the method 500 
continues to step 555 in FIG. 5A. Othenrt^ise, the current 
entry in the file list is checked to determine if it repre- 
sents a new file at step 575. That is, a primary copy of 
the client file was created on the primary storage volume 
41 that has not been backed-up to the copy storage pool 
50. 

If the current entry does not represent a new file, 
step 580 checks to see if the current entry represents a 
file on a primary storage volume 41 with a corresponding 
damaged copy on a storage volume 51 within a copy 
storage pool 50. If either inquiry brings about an affirm- 
ative response, the primary copy of the client file is cop- 
ied from the primary storage volume 41 to a copy stor- 
age volume 51 at step 585. Otherwise, the method 500 
proceeds directly to step 590. At step 590, the next entry 
within the file list is selected. Control then returns to step 
570 if no entries remain to be processed within the file 
list. 

Referring again to FIG. 5 A, the incremental back- 
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up method for optimized, sequential volumes Is de- 
scribed. As stated previously, an optimized storage vol- 
ume is defined as a primary storage volume 41 -45 in 
which the datal^se 60 has maintained a pointer to the 
file on the storage volume that has been previously 
backed-up to a copy storage volume 51 -54. At step 530, 
the sen/er database 60 is searched to build a list of files 
to be copied from the optimized primary storage volume 
43 to a copy storage volume 51 -54 within a copy storage 
pool 50. This list consists of an entry for each file on the 
primary storage volume 43 positioned after the pointer 
At step 535, the method 500 points to the first entry with- 
in the newly built file list. At step 540, the file list is 
checked to determine if the end of the list has been 
reached. If the end of the file list has been reached, step 
555 points to the next entry in the storage volume list 
and returns to step 51 5 to check if the volume list is emp- 
ty. Othenwise. step 545 checks whether the current entry 
corresponds to a new file on the primary storage volume 
43 or to a file that has a damaged back-up copy in the 
copy storage pool 50. If not, the method 500 continues 
to step 551 . Otherwise, step 550 copies the file from the 
optimized primary storage volume 43 to the copy stor- 
age pool 50. At step 551, the next entry within the file 
list is accessed. In addition, step 551 updates the pointer 
within the server database 60 to point to the file just cop- 
ied to the copy storage volume 50. 

An example is presented to illustrate the advantage 
of an optimized primary storage volume. At time t, files 
a, b, and c were backed up from primary storage volume 
A to copy storage volume D. In the server database 60, 
file c was recorded as the last file backed-up on storage 
volume A. At time t+1, files d and e, primary copies of 
client files new to the server 20, are added to storage 
volume A. At time t+2, the server 20 begins an incre- 
mental back-up operation involving storage volume A. 
Since storage volume A is optimized, the database que- 
ry is shortened. Only the files stored on the sequential 
storage volume A after file c need to be included in the 
optimized file list built from the database 60 query. Files 
a, b, and c, each with its unique bfid 112, need not be 
searched in the database 60 query. 

In the case of non-sequential 41 or unoptimized se- 
quential storage volume 44, each file stored on the vol- 
ume would be searched In the database 60 according 
to its distinct bfid 112. According to the previous exam- 
ple, the database 60 query would be lengthened In that 
information for files a, b, and c would be searched. More- 
over, the search of these additional database records 
for files a, b, and c would reveal that each of these files 
already had a valid back-up copy within the copy storage 
pool 50. 

Referring now to FIGs. 6A and 6B, a flow diagram 
describes a method 600 for recovering, or restoring, an 
unavailable primary copy of a client file stored on a pri- 
mary storage volume 41 -45 from a back-up copy of the 
file stored on a copy storage volume 51-54. FIG. 6A 
shows the steps for first building a list consisting of dam- 
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aged files or files stored on destroyed storage volumes 
in the primary storage pools 40 and then subsequently 
building a list of "best" storage volumes from the copy 
storage pools 50 corresponding to these files. "Best" 
s storage volumes can be measured by several parame- 
ters. Typically, a best storage volume is one where its 
files can be easily and quickly accessed relative to other 
volumes. That is, the storage volume is mounted, or if 
unmounted, is quicker to mount. FIG. 68 uses the list of 
10 "best" copy storage volumes to locate the back-up cop- 
ies of files to be recovered and to restore the corre- 
sponding primary copies of the files in the primary stor- 
age volumes 41 -45. 

Referring particularly to FIG. 6A, step 605 queries 
the server database 60 to uncover damaged files within 
the primary storage pools 41 -45. A list of these files is 
built within the database 60, each entry into the list cor- 
responding to a damaged file and referenced by its dis- 
tinct bfid 112. Additionally, a list of the primary storage 
20 volumes 41-45 containing these damaged files is also 
built. A step 610 points to the first entry in the list of pri- 
mary volumes containing damaged files. At step 615, a 
check is made to determine the method 600 has 
reached the end of the list of volumes. If so, the method 
25 600 continues to step 650 in FIG. 68. Otherwise, a step 
620 points to the first entry in the damaged file list. 

At step 625, a check is made to verify that the end 
of the file list has not been reached. If the end of the list 
is reached, step 645 points to the next entry in the list 
30 of primary storage volumes 41 -45 containing damaged 
files and the method 600 returns to step 615, Otherwise, 
the end of the file list has not been reached and step 
630 queries the database 60 to select the "best" storage 
volume within the copy storage pools 50 from which to 
35 recover the respective damaged file. As stated previ- 
ously, several factors may determine which copy stor- 
age volume 51-54 fits the "best" label, such as storage 
volume location, storage volume availability, and mount 
status and time. A step 635 adds the selected copy stor- 
40 age volume 51 -54 to a list of best storage volumes, pro- 
vided the volume is not previously included in the list. A 
step 640 points to the next entry in the damaged file list 
and returns to step 625 to check if the end of the file list 
has been reached. 
45 Referring now to FIG. 6B, a step 650 points to the 
first entry in the list of best copy storage volumes 51 -54 
from which to recover damaged files to the primary stor- 
age volumes 41-45. A step 655 checks for whether the 
method 600 has reached the end of the list of best copy 
50 storage volumes 51 -54. If not, step 660 queries the serv- 
er database 60 to build a list of the files stored on the 
selected copy storage volume 51-54. Each entry in this 
file list contains information about a back-up file stored 
on the selected copy storage volume 51 -54 including the 
55 file's distinct bfid 1 1 2. A step 665 points to the first entry 
in this file list. A step 670 verifies that the end of the file 
list has not been reached. If the end of the file list has 
been reached, step 690 points to the next entry in the 
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list of best copy storage volumes and returns to step CI 
655. 

Otherwise, the end of the file list pertaining to the 1. 
selected best copy storage volume has not been 
reached. A step 675 checks the entry to deternnine if the 5 
back-up file corresponds to a damaged primary copy on 
a primary storage volume 41-45. Not all back-up files 
stored on the best copy storage volume will need to be 
copied to their respective primary copies in a primary 
storage volume 41-45. This method 600 copies only io 
those back-up files that are paired with a damaged file 
or a file located on a destroyed primary storage volume. 
At step 680, the back-up file on the copy storage volume 
51-54 is copied to a primary storage volume 41-45 re- 
placing the previous primary copy of the client file. The 
server database 60 is updated to reflect the new location 
of the primary copy of the file, the new time stamp, the 
file status, and the back-up copies in the copy storage 
pools 50 pertaining to this new primary copy are now 
cross-referenced to the new primary storage location 
40. 

A step 685 points to the next entry within the list of 
files stored on the selected "best" copy storage volume. 
Once the next entry is selected, the method 600 returns 
to step 670 to determine if the end of the file list has 25 
been reached. Finally, step 699 signals that the recovery 
has been completed, the damaged files on the primary 
storage volumes 41 -45 have been recovered from the 
back-up files on the copy storage volumes 51-54. 

FIG. 7 depicts a storage medium 700 for storing ex- 30 
ecutable computer instructions, such as a magnetic dis- 
kette, an optical disk cartridge, or a magnetic tape car- 
tridge. This figure also represents memories used to 
store executable computer instructions, such as read- 
only memory (ROM) or programmable memory 35 
(PROM). The requirement for these storage mediums 
or memories is that they store digital representations of 
computer executable instructions. 

While the invention has been particularly shown 
and described with reference to preferred embodiments 40 
thereof, it will be understood by those skilled In the art 
that various changes in form and details may be made 2. 
therein without departing from the spirit and scope of the 
invention. For example, the client systems and the serv- 
er system have been shown in the figures as separate 
hardware systems. However, within the scope of the 
present invention, the client systems and the server sys- 
tem cpuld be separate software applications running un- 
der the same data processing system. In addition, the 
server may contain multiple copy storage pools. The pri- so 
mary copy of a client data file has a back-up copy in one 
copy storage pool, but may also have an additional 
back-up copy in an additional copy storage pool. Fur- 
ther, copy storage volumes are not meant to be limited 
to magnetic tape, but may comprise other storage me- 55 3. 
dia, such as DASD or optical disk. Likewise, primary 
storage volumes may also comprise any storage media. 



In a data processing system having a plurality of cli- 
ent systems generating client data files, a server 
coupled to said plurality of client systems for gen- 
erating and managing multiple copies of said client 
data files, said server comprising: 

a first storage pool having a plurality of primary 
storage volumes for storing a primary copy of 
said client data files; 

a second storage pool having a plurality of copy 
storage volumes for storing a back-up copy of 
said client data files; 

a server database for maintaining directory in- 
formation and reference location information 
for said primary copy and said back-up copy of 
said client data files; and 

a storage manager coupled to said first storage 
pool, said second storage pool, and said server 
database, said storage manager storing said 
primary copy of said client data file received 
from said client system in said primary storage 
volume, said storage manager further generat- 
ing a back-up copy of said client data file by 
copying said primary copy of said client data 
file from said primary storage volume to said 
copy storage volume, said storage manager al- 
so recovering a damaged primary copy of said 
client data file from said back-up copy of said 
client data file in said copy storage volume, said 
storage manager also periodically performing 
an incrementar back-up operation from said 
first storage pool to said second storage pool 
such that a set of selected primary copies of 
client data files is copied to said copy storage 
volumes. 

The sen/er in claim 1 further comprising: 

a first list in said sen/er database identifying 
said primary copies of said client data files to 
be copied from said first storage pool to said 
second storage pool during said incremental 
back-up operation, 

wherein said storage manager queries said di- 
rectory information and said reference location 
information in said sen/er database to build said 
first list- 

The server in claim 2 wherein said first list identifies 
said prinr^ry copies of client data files stored in said 
first storage pool at a time subsequent to when a 
previous incremental back-up operation was most 
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recently completed. 

4. The server in claim 3 wherein said first list further 
identifies said primary copies of client data files 
stored in said first storage pool having correspond- s 
ing damaged back-up copies in said second stor- 
age pool. 

5. The sen/er in any preceding claim further compris- 
ing: 10 

a third list in said server database identifying an 
unavailable primary copy of said client data 
files, a best back-up copy of said unavailable 
primary copy, and said copy storage volume 
containing said best back-up copy 

wherein said storage manager searches said 
reference location information in said server 
database to find said unavailable primary copy, 20 
said storage manager further determines said 
best back-up copy according to which said 
back-up copy in said second storage pool is 
most easily accessible to said storage manag- 
er. 25 

6. The server in clainr> 5 wherein said storage manager 
transfers said best back-up copy to said client sys- 
tem when said unavailable primary copy is request- 
ed by said client system. 30 

7. The server in claim 5 wherein tor each said copy 
storage volume identified in said third list, said stor- 
age manager copies said best back-up copy from 
said copy storage volume to said primary storage 35 
volume. 

8. The server in claim 7 wherein said unavailable pri- 
mary copy of said client data file is damaged or de- 
stroyed in said first storage pool. 40 

9. The server of any preceding claim wherein said 
storage manager synchronously generates said 
back-up copy of said client data file on said copy 
storage volume immediately after storing said pri- 45 
mary copy of said client data file on said primary 
storage volume. 

10. The server of any preceding claim wherein said di- 
rectory information in said server database for each so 
said primary copy and each said back-up copy of 
said client data file further comprises: 

a file name; 

55 

a client system identifier; 
a file status word; 



a time stamp; and 

a bit-file identifier (bfid). 

11. The server of any preceding claim wherein said ref- 
erence location information in said sen/er database 
for each said primary copy and each said back-up 
copy of said client data file further comprises: 

a storage pool identifier; 

a storage volume identifier; 

a storage volume offset; 

a tile size; and 

a bit-file identifier (bfid). 

12. The server of any preceding claim further compris- 
ing a third storage pool coupled to said storage 
manager, said third storage pool for storing a back- 
up copy of said server database. 

1 3. The server of any preceding claim wherein said pri- 
mary storage volumes are direct access storage de- 
vices (DASDs). 

14. The server of any preceding claim wherein said pri- 
mary storage volumes are magnetic tape cartridg- 
es. 

15. The server of any preceding claim wherein said pri- 
mary storage volumes are optical disks. 

16. The server of any preceding claim wherein said 
copy storage volumes are magnetic tape cartridg- 
es. 

17. The server of any preceding claim wherein said 
copy storage volumes are optical disks. 

18. In a data processing system having a plu rality of cli- 
ent systems generating client data files, and a serv- 
er coupled to said plurality of client systems, a meth- 
od in said server for generating and managing mul- 
tiple copies of said client data files comprising steps 
of: 

storing a primary copy of said client data files 
received from said plurality of client systems in 
a first storage pool, said storage pool having a 
plurality of primary storage volumes; 

generating a back-up copy of said client data 
files by copying said primary copy to a second 
storage pooL said second storage pool having 
a plurality of copy storage volumes; 
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maintaining directory information and refer- 
ence location information to link said primary 
copy and said back-up copy of said client data 
files in a server database; 

recovering an unavailable primary copy of said 
client data file from said back-up copy stored in 
said copy storage volume to said primary stor- 
age volume; and 

periodically performing an incremental back-up 
operation from said first storage pool to said 
second storage pool. 

19. The method of claim 18 wherein said incremental 
back-up operation further comprises steps of: 

selecting a set of primary copies of client data 
files within said first storage pool; and 

copying said set of primary copies to said sec- 
ond storage pool 

20. The method of claim 1 9 wherein said selecting step 
. further comprises; 

querying said directory information and said 
reference location information in said server data- 
base to build a first list identifying said set of primary 
copies. 

21. The method of claim 20 wherein said first list iden- 
tifies said primary copies stored in said first storage 
pool at a time subsequent to when a previous incre- 
mental back-up operation was most recently com- 
pleted. 

22. The method of claim 21 wherein said first list further 
identifies said primary copies stored in said first 
storage pool having corresponding damaged back- 
up copies in said second storage pool. 

23. The method of claim 20, 21 or 22 further comprising 
steps of: 

maintaining a second list in said server data- 
base, said second list identifying a sequence of or- 
dered primary copies ot said client data files on a 
sequential primary storage volume, said sequence 
of ordered primary copies having been copied as 
said back-up copies to said second storage pool 
during a previous incremental back-up operation. 



searching said reference location Information in 
said server database to find said unavailable 
primary copy of said client data file; 

5 determining a best back-up copy of said client 

data file corresponding to said unavailable pri- 
mary copy; 

building a third list in said server database iden- 
^0 tifying said copy storage volume containing 

said best back-up copy such that said copy 
storage volume is entered in said third list only 
if said copy storage volume was previously en- 
tered; and 

15 

tor each said copy storage volume identified in 
said third list, copying each said best back-up 
copy of said client data file stored therein to said 
primary storage volume. 

20 

26. The method of claim 25 wherein said best back-up 
copy Is located on said copy storage volume that is 
currently most easily accessible in said server. 

25 27. The method of claim 25 or 26 wherein said unavail- 
able primary copy of said client data file is damaged 
or destroyed in said first storage pool. 

28. The method of claim 18, 19, 20, 21. 22. 23. 24. 25. 
50 26 or 27 wherein said generating step is accom- 
plished synchronously within the server 

29. The method of claim 18, 19, 20, 21. 22, 23. 24. 25, 
26, 27 or 28 further comprising steps of: 

35 

accessing said back-up copy of said client data 
file when said primary copy Is unavailable; and 

transferring said back-up copy from said copy 
40 storage volume to said client system when said 

client system requests said client data file from 
said server 

30. The method of claim 18, 19, 20, 21, 22, 23. 24. 25. 
45 26, 27, 28 or 29 wherein said directory information 

in said server database for each said primary copy 
and each said back-up copy of said client data file 
further comprises: 

50 a file name; 



50 



24. The method of claim 23 wherein said first list iden- 
tifies said primary copies positioned on said se- 
quential primary storage volume after said se- 
quence of ordered primary copies. 

25. The method of claim 18. 19. 20. 21. 22. 23 or 24 
wherein said recovering step further comprises: 
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a client system identifier; 
a file status word; 
a time stamp; and 
a bit-file identifier (bfid). 



21 



EP 0 809 184 A1 



31. The method of claim 18. 19, 20, 21 , 22, 23, 24, 25, 
26, 27, 28, 29 or 30 wherein said reference location 
infornnatlon in said server database for each said 
prinnary copy and each said back-up copy of said 
client data file further comprises: s 

a storage pool identifier; 

a storage volume identifier; 

10 

a storage volume offset; 
a file size; and 

a bit-file identifier (bfid). is 

32. In a data processing system having a plurality of cli- 
ent systems generating client data files, and a serv- 
er coupled to said plurality of client systems, a pro- 
gram product having executable computer instruc- 20 
tions for generating and managing multiple copies 

of said client data files in said sen/er comprising: 

a computer readable storage medium for stor- 
ing said executable computer Instructions, said 25 
executable computer instructions comprising: 

storing a primary copy of said client data files 
received from said plurality of client systems in 
a first storage pool, said storage pool having a 30 
plurality of primary storage volumes; 

generating a back-up copy of said client data 
files by copying said primary copy to a second 
storage pool, said second storage pool having 35 
a plurality of copy storage volumes; 

maintaining directory information and refer- 
ence location information to link said primary 
copy and said back-up copy of said client data 40 
files in a server database; 

recovering an unavailable primary copy of said 
client data file from said back-up copy stored in 
said copy storage volume to said primary stor- 4S 
age volume; and 

periodically performing an incremental back-up 
-operation from said first storage pool to said 
second storage pool, so 
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